« Volver al listado

CVE-2011-5148

Estado: ModificadaMedia (6.8)—

Multiple incomplete blacklist vulnerabilities in the Simple File Upload (mod_simplefileuploadv1.3) module before 1.3.5 for Joomla! allow remote attackers to execute arbitrary code by uploading a file with a (1) php5, (2) php6, or (3) double (e.g. .php.jpg) extension, then accessing it via a direct request to the file in images/, as exploited in the wild in January 2012.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2011-5148",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.8,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "MEDIUM",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8.6,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2012-08-31T21:55:02.967",
  "references": [
    {
      "url": "http://docs.joomla.org/Vulnerable_Extensions_List#Simple_File_Upload_1.3",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/47370",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://wasen.net/index.php?option=com_content&view=article&id=87&Itemid=59",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.exploit-db.com/exploits/18287",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.osvdb.org/78122",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/51214",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/51234",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/72023",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://docs.joomla.org/Vulnerable_Extensions_List#Simple_File_Upload_1.3",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/47370",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://wasen.net/index.php?option=com_content&view=article&id=87&Itemid=59",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.exploit-db.com/exploits/18287",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.osvdb.org/78122",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/51214",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/51234",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/72023",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Multiple incomplete blacklist vulnerabilities in the Simple File Upload (mod_simplefileuploadv1.3) module before 1.3.5 for Joomla! allow remote attackers to execute arbitrary code by uploading a file with a (1) php5, (2) php6, or (3) double (e.g. .php.jpg) extension, then accessing it via a direct request to the file in images/, as exploited in the wild in January 2012."
    },
    {
      "lang": "es",
      "value": "Mútiples vulnerabilidades de lista negra incompleta en el módulo Simple File Upload (mod_simplefileuploadv1.3) anteriores a v1.3.5 para Joomla! permite a atacantes remotos ejecutar código de su elección subiendo un archivo con la extensión (1) php5, (2) php6, o (3) doble extensión (ej. .php.jpg), para acceder al fichero mediante una solicitud directa en la ruta images/, como se ha explotado en enero de 2012."
    }
  ],
  "lastModified": "2026-06-16T23:36:02.317",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:wasen:mod_simplefileupload:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "50AA47FE-3AED-48BE-B8F9-AD3C8AF75FC3",
              "versionEndIncluding": "1.3"
            },
            {
              "criteria": "cpe:2.3:a:wasen:mod_simplefileupload:1.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6C83D348-0F57-4F03-BC02-74CAB87CF24E"
            },
            {
              "criteria": "cpe:2.3:a:wasen:mod_simplefileupload:1.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7D226F1D-4AB8-4DA1-AFEF-8165ABBC1A09"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:joomla:joomla\\!:*:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "2AC7400C-F6AF-4B5E-A34B-0222F94DCC46"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "evaluatorComment": "Per: http://cwe.mitre.org/data/definitions/184.html\r\n\r\n'CWE-184: Incomplete Blacklist'",
  "sourceIdentifier": "cve@mitre.org"
}